VendorsGila CMSgila_cms1.11.8
Vulnerabilities

Gila CMS Gila CMS 1.11.8

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2020-5514
Gila CMS 1.11.8 allows Unrestricted Upload of a File with a Dangerous Type via .phar or .phtml to the lzld/thumb?src= URI.
Published 2020-01-06 · Modified
9.1EPSS 0.441
CVE-2020-5515
Gila CMS 1.11.8 allows /admin/sql?query= SQL Injection.
Published 2020-01-06 · Modified
7.21 PoCEPSS 0.265
CVE-2020-5513
Gila CMS 1.11.8 allows /cm/delete?t=../ Directory Traversal.
Published 2020-01-06 · Modified
6.8EPSS 0.258
CVE-2020-5512
Gila CMS 1.11.8 allows /admin/media?path=../ Path Traversal.
Published 2020-01-06 · Modified
6.8EPSS 0.189